WebApp Sec mailing list archives

RE: [PHP] CSRF attack not possible in I.E. 6.01 SP1?


From: Chris Shiflett <shiflett () php net>
Date: Mon, 16 Aug 2004 11:17:17 -0700 (PDT)

--- Jay Blanchard <jay.blanchard () niicommunications com> wrote:
You would have to ask the Microsoft Development Group, who
probably does not subscribe to this list. Crossposting is bad.
Being OT during a crosspost is even worse. I can hear the
falmethrowers warming up in the wings.

FYI -> This is (or use to be) a PHP list

I won't defend cross-posting, but I think CSRF is very on-topic.

Chris

=====
Chris Shiflett - http://shiflett.org/

PHP Security - O'Reilly
     Coming Fall 2004
HTTP Developer's Handbook - Sams
     http://httphandbook.org/
PHP Community Site
     http://phpcommunity.org/


Current thread: